:::info Explore What’s New from Cobalt This Month
:::
In response to customer feedback and to better align with the comprehensive capabilities of the feature, we are excited to announce that ‘Domains’ has now been revamped as ‘Attack Surface.’ This new name reflects the broader scope and enhanced functionality that this feature offers to our users.
As part of this update, we are introducing the all-new ‘Attack Surface Insights’ feature. We understand that managing multiple domains and hosts can be challenging for our customers, making it crucial to prioritize effectively. The new insights feature aims to simplify this process by providing high-level insights, enabling users to identify key focus areas and prioritize tasks seamlessly.
With intuitive charts and visual aids, customers can now gain a consolidated overview of the health status of their attack surface, empowering them to make informed decisions and optimize their security strategies. This update underscores our commitment to helping our users achieve a more robust and proactive security posture.
Customers have expressed a strong desire to seamlessly integrate their DAST findings directly into their ticketing systems, a highly requested feature for DAST. In response to this feedback, we have enhanced our public API and Integration Builder to empower customers to:
With these improvements, customers will now receive real-time notifications when a DAST finding is detected or resolved. Additionally, we have introduced recipe templates in the Integration Builder Library, allowing customers to effortlessly push their DAST findings to popular platforms such as Jira Cloud, GitHub Issues, and Azure DevOps Boards.
https://www.loom.com/share/7d61c971c7cc47daa750bf41ff247831
By introducing the “Extra Hosts” section to the target’s “Advanced Settings” page, customers now have the ability to include APIs residing on different hostnames as extra hosts. This enhancement ensures that the API will undergo scanning as part of the web target. The significance of this feature lies in providing customers with a more comprehensive view of their application’s security. By scanning the API along with the web target, customers can identify and address vulnerabilities that may have gone undetected through isolated web target scans.
This integrated approach enhances security measures and empowers customers to proactively address potential risks in their applications.
We have implemented email notifications for the following key actions: successful scan completion, scan failure, target creation, and target deletion. These notifications will be sent to all organization owners and the Customer Success Manager (CSM).
This enhancement ensures that important stakeholders are promptly informed about significant events related to their security scans, enabling them to stay informed and take timely action when necessary.
We are pleased to announce that Secure Code Reviews are now available on the Cobalt platform! This comprehensive offering includes several key features, which are outlined below:
This new offering is designed to enhance the security and integrity of your codebase. Customers can gain valuable insights into the thoroughness of the assessment, leverage the expertise of our testers, and receive detailed reporting to address potential risks and strengthen overall security measures.